Unknown registry modification on site...

Alerted by this report: http://siteinspector.comodo.com/public/reports/show_log?id=12787
Nothing detected here: http://www.virustotal.com/url-scan/report.html?id=af9569af5b562ee1dde76962e00b711a-1324064649
and here: http://www.virustotal.com/file-scan/report.html?id=619f5a7c1951bed5cafe0873e5a79dce7855412ac8c0139c73a7509dd094e839-1324068389
Found suspicious: http://urlquery.net/report.php?id=12294
Suspicious code here:
-www.zman.com/javascript/carousel.js suspicious
[suspicious:2] (ipaddr:82.166.49.42) (script) -www.zman.com/javascript/carousel.js
status: (referer=-www.zman.com/video/2011/10/27/32881.html)saved 6119 bytes ea114e15bceaa444699b2f8d4e15c12f5cc0fbd9
info: [decodingLevel=0] found JavaScript
error: undefined variable jQuery
suspicious:
1 suspicious domain found: http://www.google.com/safebrowsing/diagnostic?site=http%3A//tv.zman.com infected via nl dot ai/ with Mal/ExpJS-N (malware now dead)

polonus

At second glance, there might be an explanation for this, comodo siteinspector is unaware of.
This might be an F-Secure SID issue, re: http://answers.microsoft.com/en-us/windows/forum/windows_vista-security/1-user-registry-handles-leaked-from-registryusers/71585986-9cb5-4846-ac72-33b28a59a01f
SED means Security Identifier,

polonus

Norman lab

The page attache is not malicious.